After I Enableand configure (Radius For Accounting (logging)) from TMG consol ,It loged TMG IP address instead of Real vpn client machin Ip address (LAN Ip address) in SQL Database
Saturday, December 08, 2012 4:43 AM
I have TMG server with Nap service and sql service install on it,I have vpn client who connect to Internet Via vpn connection from my Internal network.I want to enable Accounting that report which client frome which computer start vpn connection.
I want to Use Microsoft NAP service As a Radius for LOG Accounting Instead Of Using Third Party Radius to record vpn connection Log. after I configured log accounting From NAP Console in Accounting Section , which save record on sql database . I query the database ,in (Client_IP_Address) Table instead of real client machine Ip address ,it show me the TMG IPADDRESS.
there is a log file start with(IN*) in c:\windows\system32\report\ folder which show me the vpn machine client IP address and user properties connection correctly.
I print screen the Database and select the problem.
you will be kind enough if you help me.
- Edited by samuel_emi Sunday, December 09, 2012 4:28 AM
Wednesday, December 12, 2012 4:34 AMModerator
Thank you for the post.
I am trying to involve someone familiar with this topic to further look at this issue. There might be some time delay. Appreciate your patience.
Thank you for your understanding and support.
Nick Gu - MSFT
Tuesday, January 01, 2013 12:58 PM
Thank you for contacting Microsoft support.
I read the description and wanted to know more about the network environment.
Could you please provide more information regarding the network Rules and relations that you have between your internal network and VPN network?
Wednesday, February 20, 2013 5:21 AM
in my lan first of all user use vpn connection to TMG Server in order to brows internet ,because i want some user hwo is not in my Domain force to authenticate,
But as i mantioned above loging is not work properly, the network rule between two network is configure to route, i have access rule to allow all to any network.
the other things is same as above which is mantioned